CVE-2023-43512

Transient DOS while parsing GATT service data when the total amount of memory that is required by the multiple services is greater than the actual size of the services buffer.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:qualcomm:qcn7606_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:qualcomm:qcn7606:-:*:*:*:*:*:*:*

History

12 Apr 2024, 16:15

Type Values Removed Values Added
CWE CWE-126

08 Jan 2024, 18:58

Type Values Removed Values Added
CPE cpe:2.3:h:qualcomm:qcn7606:-:*:*:*:*:*:*:*
cpe:2.3:o:qualcomm:qcn7606_firmware:-:*:*:*:*:*:*:*
References () https://www.qualcomm.com/company/product-security/bulletins/january-2024-bulletin - () https://www.qualcomm.com/company/product-security/bulletins/january-2024-bulletin - Vendor Advisory
CWE CWE-125
First Time Qualcomm qcn7606
Qualcomm qcn7606 Firmware
Qualcomm

02 Jan 2024, 13:47

Type Values Removed Values Added
Summary
  • (es) DOS transitorio mientras analiza los datos del servicio GATT cuando la cantidad total de memoria requerida por los múltiples servicios es mayor que el tamaño real del búfer de servicios.

02 Jan 2024, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-02 06:15

Updated : 2024-04-12 16:15


NVD link : CVE-2023-43512

Mitre link : CVE-2023-43512

CVE.ORG link : CVE-2023-43512


JSON object : View

Products Affected

qualcomm

  • qcn7606
  • qcn7606_firmware
CWE
CWE-125

Out-of-bounds Read

CWE-126

Buffer Over-read